CVE-2020-7374
Published
CVSS v3
5.3
MEDIUM
CVSS v2
6.8
MEDIUM
Affected
1
PROJECT
Description
Documalis Free PDF Editor version 5.7.2.26 and Documalis Free PDF Scanner version 5.7.2.122 do not appropriately validate the contents of JPEG images contained within a PDF. Attackers can exploit this vulnerability to trigger a buffer overflow on the stack and gain remote code execution as the user running the Documalis Free PDF Editor or Documalis Free PDF Scanner software.